High
Node.js snyk module could allow a remote attacker to execute arbitrary code on the system, caused by code injection flaw in the build.gradle or gradle-wrapper.jar file. By persuading a victim to scan a specially-crafted project, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Code Execution
Code Execution
Upgrade to the latest version of snyk, available from the NPM Website.